robuxsupply[.]shop
“Claim Your Robux”
Зведення доказів
This domain, robuxsupply.shop, is flagged as a confirmed brand impersonation site specifically targeting PayPal users through deceptive web pages. Analysis indicates the site presents a fraudulent interface titled 'Claim Your Robux,' designed to mimic legitimate reward or payment portals. The objective appears to be credential theft, where victims are tricked into entering sensitive account details under the pretense of claiming fictitious rewards, which are then harvested by threat actors for financial fraud or unauthorized account access.
Infrastructure analysis reveals the domain was registered on February 21, 2026, and resolves to the IP address 192.64.117.221, hosted under AS22612 (Namecheap, Inc.) in the United States. The domain lacks an SSL certificate, increasing the risk of data interception during transmission. Detection metrics confirm elevated malicious activity, with 13 out of 95 security vendors on VirusTotal flagging the domain as malicious. Additionally, the domain appears on one security blocklist, further corroborating its fraudulent nature. The registrar details and hosting provider align with patterns observed in other brand impersonation campaigns, suggesting potential reuse of infrastructure across multiple phishing operations.
Users who visited robuxsupply.shop or interacted with its content should immediately take corrective action. If credentials or financial details were entered, affected individuals must change their PayPal passwords and enable multi-factor authentication without delay. Monitoring for unauthorized transactions or account activity is critical, and any suspicious logins should be reported to the legitimate service provider. Browser caches and saved passwords associated with the domain should be cleared to prevent persistent exposure. Given the elevated risk level, users are advised to remain vigilant for follow-up phishing attempts via email or messaging platforms, as threat actors may attempt to exploit compromised information for further attacks.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога